OTL logfile created on: 04.09.2013 17:38:14 - Run 1
OTL by OldTimer - Version 3.2.69.0 Folder = C:UsersASUSDownloads
64bit- Ultimate Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 0000041f | Country: Turkiye | Language: TRK | Date Format: dd.MM.yyyy
4,00 Gb Total Physical Memory | 1,87 Gb Available Physical Memory | 46,75% Memory free
8,00 Gb Paging File | 5,06 Gb Available in Paging File | 63,32% Paging File free
Paging file location(s): ?

%SystemDrive% = C: | %SystemRoot% = C:Windows | %ProgramFiles% = C:Program Files (x86)
Drive C: | 95,70 Gb Total Space | 12,60 Gb Free Space | 13,17% Space Free | Partition Type: NTFS
Drive D: | 202,29 Gb Total Space | 37,37 Gb Free Space | 18,47% Space Free | Partition Type: NTFS
Drive E: | 2,87 Gb Total Space | 0,00 Gb Free Space | 0,00% Space Free | Partition Type: CDFS
Drive F: | 146,48 Gb Total Space | 26,16 Gb Free Space | 17,86% Space Free | Partition Type: NTFS
Drive G: | 319,27 Gb Total Space | 38,40 Gb Free Space | 12,03% Space Free | Partition Type: NTFS
Computer Name: ASUS-BILGISAYAR | User Name: ASUS | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (All) ==========
PRC - [2013.09.04 17:37:34 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:UsersASUSDownloadsOTL.exe
PRC - [2013.09.02 23:35:59 | 000,829,392 | ---- | M] (Google Inc.) -- C:UsersASUSAppDataLocalGoogleChromeApplicat ionchrome.exe
PRC - [2013.08.27 18:20:32 | 003,549,528 | ---- | M] (Electronic Arts) -- C:Program Files (x86)OriginOrigin.exe
PRC - [2013.08.21 19:42:22 | 004,819,456 | ---- | M] (Uuaipgwc szdvmnl inedpfo wasinjklfey dgmzzxeoyaqe tqvghyocctpybsbd) -- C:UsersASUSAppDataRoamingInstallShieldmsdn.e xe
PRC - [2013.08.14 11:10:26 | 003,291,008 | ---- | M] (Skype Technologies S.A.) -- C:ProgramDataSkypeToolbarsSkype C2C Servicec2c_service.exe
PRC - [2013.07.27 11:41:25 | 001,028,896 | ---- | M] (NVIDIA Corporation) -- C:Program Files (x86)NVIDIA CorporationNVIDIA Update CoreNvTmru.exe
PRC - [2013.07.27 11:35:36 | 001,889,568 | ---- | M] (NVIDIA Corporation) -- C:Program Files (x86)NVIDIA CorporationNVIDIA Update Coredaemonu.exe
PRC - [2013.07.08 14:09:10 | 004,153,184 | ---- | M] (TeamViewer GmbH) -- C:Program Files (x86)TeamViewerVersion8TeamViewer_Service.exe
PRC - [2013.06.21 11:02:14 | 019,876,456 | R--- | M] (Skype Technologies S.A.) -- C:Program Files (x86)SkypePhoneSkype.exe
PRC - [2013.06.21 05:15:56 | 000,413,472 | ---- | M] (NVIDIA Corporation) -- C:Program Files (x86)NVIDIA Corporation3D VisionnvSCPAPISvr.exe
PRC - [2013.06.08 23:28:14 | 000,882,520 | ---- | M] (BitTorrent Inc.) -- C:UsersASUSAppDataRoamingBitTorrentBitTorren t.exe
PRC - [2013.05.11 13:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) -- C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe
PRC - [2013.03.24 14:00:05 | 000,076,888 | ---- | M] () -- C:WindowsSysWOW64PnkBstrA.exe
PRC - [2013.03.15 22:28:12 | 004,683,768 | ---- | M] (Almico Software (www.almico.com)) -- C:Program Files (x86)SpeedFanspeedfan.exe
PRC - [2013.03.14 11:23:30 | 003,672,640 | ---- | M] (Disc Soft Ltd) -- C:Program Files (x86)DAEMON Tools LiteDTLite.exe
PRC - [2012.10.07 18:17:28 | 029,936,640 | ---- | M] (Electronic Arts) -- D:GamesFIFA 13Gamefifa13.exe
PRC - [2011.03.24 18:11:18 | 000,107,800 | ---- | M] (Octoshape ApS) -- C:UsersASUSAppDataRoamingOctoshapeOctoshape Streaming ServicesOctoshapeClient.exe
PRC - [2006.07.18 17:15:18 | 000,049,152 | ---- | M] (Vimicro) -- C:Windowsvmsnap3.exe
PRC - [2006.07.04 15:16:32 | 000,049,152 | ---- | M] () -- C:WindowsDomino.exe
PRC - [2006.02.28 12:42:38 | 000,229,376 | ---- | M] (Apple Computer, Inc.) -- C:Program Files (x86)BonjourmDNSResponder.exe
========== Modules (No Company Name) ==========
MOD - [2013.09.04 17:35:53 | 000,192,512 | ---- | M] () -- C:UsersASUSAppDataLocalTempsfamcc00001.dll
MOD - [2013.09.04 17:35:53 | 000,158,720 | ---- | M] () -- C:UsersASUSAppDataLocalTempsfareca00001.dll
MOD - [2013.09.02 23:35:56 | 000,410,576 | ---- | M] () -- C:UsersASUSAppDataLocalGoogleChromeApplicat ion29.0.1547.66ppGoogleNaClPluginChrome.dll
MOD - [2013.09.02 23:35:55 | 013,599,184 | ---- | M] () -- C:UsersASUSAppDataLocalGoogleChromeApplicat ion29.0.1547.66PepperFlashpepflashplayer.dll
MOD - [2013.09.02 23:35:54 | 004,053,456 | ---- | M] () -- C:UsersASUSAppDataLocalGoogleChromeApplicat ion29.0.1547.66pdf.dll
MOD - [2013.09.02 23:35:04 | 000,709,584 | ---- | M] () -- C:UsersASUSAppDataLocalGoogleChromeApplicat ion29.0.1547.66libglesv2.dll
MOD - [2013.09.02 23:35:03 | 000,099,792 | ---- | M] () -- C:UsersASUSAppDataLocalGoogleChromeApplicat ion29.0.1547.66libegl.dll
MOD - [2013.09.02 23:35:01 | 001,604,560 | ---- | M] () -- C:UsersASUSAppDataLocalGoogleChromeApplicat ion29.0.1547.66ffmpegsumo.dll
MOD - [2013.08.27 18:20:33 | 000,062,976 | ---- | M] () -- C:Program Files (x86)Origintufao.dll
MOD - [2013.07.27 11:50:15 | 000,013,088 | ---- | M] () -- C:PROGRA~2NVIDIA~1NVSTRE~1detoured.dll
MOD - [2013.01.24 14:16:54 | 001,050,112 | ---- | M] () -- c

MOD - [2012.10.07 18:07:48 | 000,137,728 | ---- | M] () -- D:GamesFIFA 13Gamerldea.dll
MOD - [2006.07.04 15:16:32 | 000,049,152 | ---- | M] () -- C:WindowsDomino.exe
========== Services (SafeList) ==========
SRV:64bit: - [2013.07.27 11:49:33 | 014,984,480 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:Program FilesNVIDIA CorporationNvStreamSrvnvstreamsvc.exe -- (NvStreamSvc)
SRV:64bit: - [2013.05.27 08:50:47 | 001,011,712 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:Program FilesWindows DefenderMpSvc.dll -- (WinDefend)
SRV:64bit: - [2009.07.14 04:40:01 | 000,193,536 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:WindowsSysNativeappmgmts.dll -- (AppMgmt)
SRV - [2013.08.21 19:51:00 | 000,257,416 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:WindowsSysWOW64MacromedFlashFlashPlayerUpda teService.exe -- (AdobeFlashPlayerUpdateSvc)
SRV - [2013.08.14 11:10:26 | 003,291,008 | ---- | M] (Skype Technologies S.A.) [Auto | Running] -- C:ProgramDataSkypeToolbarsSkype C2C Servicec2c_service.exe -- (Skype C2C Service)
SRV - [2013.08.04 01:26:57 | 000,654,848 | ---- | M] (Macrovision Europe Ltd.) [On_Demand | Stopped] -- C:Program Files (x86)Common FilesMacrovision SharedFLEXnet PublisherFNPLicensingService.exe -- (FLEXnet Licensing Service)
SRV - [2013.07.27 11:35:36 | 001,889,568 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:Program Files (x86)NVIDIA CorporationNVIDIA Update Coredaemonu.exe -- (nvUpdatusService)
SRV - [2013.07.08 14:09:10 | 004,153,184 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:Program Files (x86)TeamViewerVersion8TeamViewer_Service.exe -- (TeamViewer8)
SRV - [2013.06.21 10:57:12 | 000,162,408 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:Program Files (x86)SkypeUpdaterUpdater.exe -- (SkypeUpdate)
SRV - [2013.06.21 05:15:56 | 000,413,472 | ---- | M] (NVIDIA Corporation) [Auto | Running] -- C:Program Files (x86)NVIDIA Corporation3D VisionnvSCPAPISvr.exe -- (Stereo Service)
SRV - [2013.05.11 13:37:26 | 000,065,640 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:Program Files (x86)Common FilesAdobeARM1.0armsvc.exe -- (AdobeARMservice)
SRV - [2013.03.24 14:00:05 | 000,076,888 | ---- | M] () [Auto | Running] -- C:WindowsSysWOW64PnkBstrA.exe -- (PnkBstrA)
SRV - [2012.12.17 16:46:50 | 000,137,488 | ---- | M] (Futuremark Corporation) [On_Demand | Stopped] -- C:Program Files (x86)FuturemarkFuturemark SystemInfoFMSISvc.exe -- (Futuremark SystemInfo Service)
SRV - [2012.11.19 18:03:24 | 000,489,256 | ---- | M] (Valve Corporation) [On_Demand | Stopped] -- C:Program Files (x86)Common FilesSteamSteamService.exe -- (Steam Client Service)
SRV - [2010.03.18 14:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:WindowsMicrosoft.NETFrameworkv4.0.30319msco rsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2009.06.11 00:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:WindowsMicrosoft.NETFrameworkv2.0.50727msco rsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2013.05.14 22:28:40 | 000,039,712 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:WindowsSysNativedriversnvvad64v.sys -- (nvvad_WaveExtensible)
DRV:64bit: - [2013.03.15 22:47:58 | 000,283,200 | ---- | M] (DT Soft Ltd) [Kernel | System | Running] -- C:WindowsSysNativedriversdtsoftbus01.sys -- (dtsoftbus01)
DRV:64bit: - [2013.02.25 08:27:45 | 000,194,848 | ---- | M] (NVIDIA Corporation) [Kernel | On_Demand | Running] -- C:WindowsSysNativedriversnvhda64v.sys -- (NVHDA)
DRV:64bit: - [2013.02.12 07:12:06 | 000,019,968 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversusb8023x.sys -- (usb_rndisx)
DRV:64bit: - [2012.08.23 17:12:16 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversterminpt.sys -- (terminpt)
DRV:64bit: - [2012.08.23 17:10:20 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversrdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2012.08.23 17:08:26 | 000,030,208 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversTsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2012.08.23 17:07:35 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversTsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2012.04.16 00:32:14 | 001,071,032 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | Auto | Stopped] -- C:WindowsSysNativedriverswcmvcam64.sys -- (WCMVCAM)
DRV:64bit: - [2012.03.01 09:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:WindowsSysNativedriversfs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2012.02.16 08:42:00 | 000,676,968 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:WindowsSysNativedriversRt64win7.sys -- (RTL8167)
DRV:64bit: - [2011.05.13 04:21:04 | 000,177,640 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversssadmdm.sys -- (ssadmdm)
DRV:64bit: - [2011.05.13 04:21:04 | 000,146,920 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversssadserd.sys -- (ssadserd)
DRV:64bit: - [2011.05.13 04:21:02 | 000,157,672 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversssadbus.sys -- (ssadbus)
DRV:64bit: - [2011.05.13 04:21:02 | 000,036,328 | ---- | M] (Google Inc) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversssadadb.sys -- (androidusb)
DRV:64bit: - [2011.05.13 04:21:02 | 000,016,872 | ---- | M] (MCCI Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversssadmdfl.sys -- (ssadmdfl)
DRV:64bit: - [2010.11.21 06:23:48 | 000,117,248 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriverstsusbhub.sys -- (tsusbhub)
DRV:64bit: - [2010.11.21 06:23:48 | 000,088,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversSynth3dVsc.sys -- (Synth3dVsc)
DRV:64bit: - [2010.11.21 06:23:48 | 000,071,168 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversdmvsc.sys -- (dmvsc)
DRV:64bit: - [2010.11.21 06:23:47 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversamdsata.sys -- (amdsata)
DRV:64bit: - [2010.11.21 06:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversHpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.21 06:23:47 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:WindowsSysNativedriversamdxata.sys -- (amdxata)
DRV:64bit: - [2010.07.29 00:25:10 | 000,029,720 | ---- | M] (Initio Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversivusb.sys -- (ivusb)
DRV:64bit: - [2009.07.14 04:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversamdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 04:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriverslsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 04:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversstexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.10 23:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversevbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 23:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversbxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 23:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedriversb57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 23:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedrivershcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.03.18 18:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Stopped] -- C:WindowsSysNativedrivershamachi.sys -- (hamachi)
DRV:64bit: - [2007.06.23 14:46:10 | 000,308,096 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Running] -- C:WindowsSysNativedriversvvftav303.sys -- (vvftav303)
DRV:64bit: - [2007.03.25 13:26:26 | 001,494,656 | ---- | M] (Vimicro Corporation) [Kernel | On_Demand | Running] -- C:WindowsSysNativedriversusbVM303.sys -- (ZSMC0303)
DRV - [2013.03.26 02:17:11 | 000,027,008 | ---- | M] () [Kernel | On_Demand | Stopped] -- C:UsersASUSAppDataLocalTempGPU-Z.sys -- (GPU-Z)
DRV - [2011.01.06 12:06:56 | 000,011,888 | ---- | M] (MSI) [Kernel | On_Demand | Stopped] -- C:Program Files (x86)Setup FilesMs7641vHD0NTIOLib_X64.sys -- (NTIOLib_1_0_6)
DRV - [2010.04.21 11:25:54 | 000,014,136 | ---- | M] (MSI) [Kernel | On_Demand | Stopped] -- C:Program Files (x86)MSIBIOS Code Unlocked TechnologyNTIOLib_X64.sys -- (NTIOLib_1_0_2)
DRV - [2009.07.14 04:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:WindowsSysWOW64driverswimmount.sys -- (WIMMount)
========== Standard Registry (All) ==========
========== Internet Explorer ==========
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Secondary_Page_URL = [binary data]
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Extensions Off Page = about:NoAdd-ons
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Local Page = C:WindowsSystem32blank.htm
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Security Risk Page = about:SecurityRisk
IE:64bit: - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
IE:64bit: - HKLM..SearchScopes,DefaultScope =
IE:64bit: - HKLM..SearchScopes: "URL" = http://www.bing.com/search?q=&FORM=IE8SRC
IE:64bit: - HKLM..SearchScopes: "URL" = http://www.google.com/search?q=&rls=com.microsoft::&ie=&oe=&sourceid=ie7
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Default_Secondary_Page_URL = [binary data]
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Extensions Off Page = about:NoAdd-ons
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Local Page = C:WindowsSysWOW64blank.htm
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Security Risk Page = about:SecurityRisk
IE - HKLMSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://www.aramasayfam.com/?aff=1
IE - HKLM..SearchScopes,DefaultScope =
IE - HKLM..SearchScopes: "URL" = http://www.aramasayfam.com/s/?aff=1&q=
IE - HKLM..SearchScopes: "URL" = http://www.bing.com/search?q=&FORM=IE8SRC
IE - HKLM..SearchScopes: "URL" = http://www.google.com/search?q=&rls=com.microsoft::&ie=&oe=&sourceid=ie7
IE - HKCUSOFTWAREMicrosoftInternet ExplorerMain,Local Page = C:Windowssystem32blank.htm
IE - HKCUSOFTWAREMicrosoftInternet ExplorerMain,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
IE - HKCUSOFTWAREMicrosoftInternet ExplorerMain,Start Page = http://www.aramasayfam.com/?aff=1
IE - HKCU..URLSearchHook: - C:WindowsSysWOW64ieframe.dll (Microsoft Corporation)
IE - HKCU..SearchScopes,DefaultScope =
IE - HKCU..SearchScopes: "URL" = http://www.aramasayfam.com/s/?aff=1&q=
IE - HKCU..SearchScopes: "URL" = http://www.bing.com/search?FORM=WLETDF&PC=WLEM&q=&src=IE-SearchBox
IE - HKCU..SearchScopes: "URL" = http://www.bing.com/search?q=&src=IE-SearchBox&FORM=IE10SR
IE - HKCU..SearchScopes: "URL" = http://www.google.com/search?q=&rls=com.microsoft::&ie=&oe=&sourceid=ie7
IE - HKCUSoftwareMicrosoftWindowsCurrentVersionInt ernet Settings: "ProxyEnable" = 0
IE - HKCUSoftwareMicrosoftWindowsCurrentVersionInt ernet Settings: "ProxyOverride" = *.local
========== FireFox ==========
FF:64bit: - [email protected]/FlashPlayer: C:Windowssystem32MacromedFlashNPSWF64_11_8_80 0_94.dll File not found
FF:64bit: - [email protected]/DTPlugin,version=10.10.2: C:Windowssystem32npDeployJava1.dll (Oracle Corporation)
FF:64bit: - [email protected]/JavaPlugin,version=10.10.2: C:Program FilesJavajre7binplugin2npjp2.dll (Oracle Corporation)
FF:64bit: - [email protected]/GENUINE: disabled File not found
FF:64bit: - [email protected]/NpCtrl,version=1.0: C:Program FilesMicrosoft Silverlight5.1.20513.0npctrl.dll ( Microsoft Corporation)
FF - [email protected]/FlashPlayer: C:WindowsSysWOW64MacromedFlashNPSWF32_11_8_80 0_94.dll ()
FF - [email protected]/ShockwavePlayer: C:WindowsSysWOW64AdobeDirectornp32dsw.dll (Adobe Systems, Inc.)
FF - [email protected]/DTPlugin,version=10.17.2: C:WindowsSysWOW64npDeployJava1.dll (Oracle Corporation)
FF - [email protected]/JavaPlugin,version=10.17.2: C:Program Files (x86)Javajre7binplugin2npjp2.dll (Oracle Corporation)
FF - [email protected]/GENUINE: disabled File not found
FF - [email protected]/NpCtrl,version=1.0: C:Program Files (x86)Microsoft Silverlight5.1.20513.0npctrl.dll ( Microsoft Corporation)
FF - [email protected]/3DVision: C:Program Files (x86)NVIDIA Corporation3D Visionnpnv3dv.dll (NVIDIA Corporation)
FF - [email protected]/3DVisionStreaming: C:Program Files (x86)NVIDIA Corporation3D Visionnpnv3dvstreaming.dll (NVIDIA Corporation)
FF - [email protected]/Google Update;version=3: C:Program Files (x86)GoogleUpdate1.3.21.153npGoogleUpdate3.dll (Google Inc.)
FF - [email protected]/Google Update;version=9: C:Program Files (x86)GoogleUpdate1.3.21.153npGoogleUpdate3.dll (Google Inc.)
FF - HKLMSoftwareMozillaPluginsAdobe Reader: C:Program Files (x86)AdobeReader 11.0ReaderAIRnppdf32.dll (Adobe Systems Inc.)
FF - [email protected]/Octoshape Streaming Services,version=1.0: C:UsersASUSAppDataRoamingOctoshapeOctoshape Streaming Servicessua-1103234-0-npoctoshape.dll (Octoshape ApS)
FF - [email protected]/Google Update;version=3: C:UsersASUSAppDataLocalGoogleUpdate1.3.21.1 53npGoogleUpdate3.dll (Google Inc.)
FF - [email protected]/Google Update;version=9: C:UsersASUSAppDataLocalGoogleUpdate1.3.21.1 53npGoogleUpdate3.dll (Google Inc.)
FF - [email protected]/UnityPlayer,version=1.0: C:UsersASUSAppDataLocalLowUnityWebPlayerloa dernpUnity3D32.dll (Unity Technologies ApS)
FF - HKCUSoftwareMozillaPluginsubisoft.com/uplaypc: C:Program Files (x86)UbisoftUbisoft Game Launchernpuplaypc.dll (Ubisoft)
========== Chrome ==========
CHR - homepage:
CHR - Extension: No name found = C:UsersASUSAppDataLocalGoogleChromeUser DataDefaultExtensionslifbcibllhkdhoafpjfnlhfpfg npldfl6.11.0.13348_0
CHR - Extension: No name found = C:UsersASUSAppDataLocalGoogleChromeUser DataDefaultExtensionsnmmhkkegccagdldgiimedpiccm gmieda.0.4.10_0
O1 HOSTS File: ([2009.06.11 00:00:26 | 000,000,824 | ---- | M]) - C:WindowsSysNativedriversetchosts
O2:64bit: - BHO: (Java(tm) Plug-In SSV Helper) - - C:Program FilesJavajre7binssv.dll (Oracle Corporation)
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - - C:Program FilesCommon FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll (Microsoft Corp.)
O2:64bit: - BHO: (Google Toolbar Helper) - - C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O2:64bit: - BHO: (Skype add-on for Internet Explorer) - - C:Program Files (x86)SkypeToolbarsInternet Explorer x64skypeieplugin.dll (Skype Technologies S.A.)
O2:64bit: - BHO: (Java(tm) Plug-In 2 SSV Helper) - - C:Program FilesJavajre7binjp2ssv.dll (Oracle Corporation)
O2 - BHO: (Groove GFS Browser Helper) - - C:Program Files (x86)Microsoft OfficeOffice12GrooveShellExtensions.dll (Microsoft Corporation)
O2 - BHO: (Java(tm) Plug-In SSV Helper) - - C:Program Files (x86)Javajre7binssv.dll (Oracle Corporation)
O2 - BHO: (Windows Live ID Oturum Acma Yardım Aracı) - - C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Windows Live Messenger Companion Helper) - - C:Program Files (x86)Windows LiveCompanioncompanioncore.dll (Microsoft Corporation)
O2 - BHO: (Google Toolbar Helper) - - C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll (Google Inc.)
O2 - BHO: (Skype Browser Helper) - - C:Program Files (x86)SkypeToolbarsInternet Explorerskypeieplugin.dll (Skype Technologies S.A.)
O2 - BHO: (Java(tm) Plug-In 2 SSV Helper) - - C:Program Files (x86)Javajre7binjp2ssv.dll (Oracle Corporation)
O3:64bit: - HKLM..Toolbar: (Google Toolbar) - - C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_64.dll (Google Inc.)
O3 - HKLM..Toolbar: (Google Toolbar) - - C:Program Files (x86)GoogleGoogle ToolbarGoogleToolbar_32.dll (Google Inc.)
O4:64bit: - HKLM..Run: [Domino] C:WindowsDomino.exe ()
O4:64bit: - HKLM..Run: [Nvtmru] C:Program Files (x86)NVIDIA CorporationNVIDIA Update Corenvtmru.exe (NVIDIA Corporation)
O4 - HKLM..Run: [HKLM] C:UsersASUSAppDataRoaminginstallsvchost.EXE File not found
O4 - HKCU..Run: [BitTorrent] C:UsersASUSAppDataRoamingBitTorrentBitTorren t.exe (BitTorrent Inc.)
O4 - HKCU..Run: [DAEMON Tools Lite] C:Program Files (x86)DAEMON Tools LiteDTLite.exe (Disc Soft Ltd)
O4 - HKCU..Run: [EADM] C:Program Files (x86)OriginOrigin.exe (Electronic Arts)
O4 - HKCU..Run: [HKCU] C:UsersASUSAppDataRoaminginstallsvchost.EXE File not found
O4 - HKCU..Run: [Keyboard Inf.] C:UsersASUSAppDataRoamingInstallShieldmsdn.e xe (Uuaipgwc szdvmnl inedpfo wasinjklfey dgmzzxeoyaqe tqvghyocctpybsbd)
O4 - HKCU..Run: [Octoshape Streaming Services] C:UsersASUSAppDataRoamingOctoshapeOctoshape Streaming ServicesOctoshapeClient.exe (Octoshape ApS)
O4 - HKCU..Run: [Skype] C:Program Files (x86)SkypePhoneSkype.exe (Skype Technologies S.A.)
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesExplorer: NoActiveDesktop = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesExplorer: NoActiveDesktopChanges = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesExplorer: ForceActiveDesktopOn = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesExplorerRun: Policies = C:UsersASUSAppDataRoaminginstallsvchost.EXE
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: ConsentPromptBehaviorAdmin = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: ConsentPromptBehaviorUser = 3
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: EnableInstallerDetection = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: EnableLUA = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: EnableSecureUIAPaths = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: EnableUIADesktopToggle = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: EnableVirtualization = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: PromptOnSecureDesktop = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: ValidateAdminCodeSignatures = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: dontdisplaylastusername = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: legalnoticecaption =
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: legalnoticetext =
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: scforceoption = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: shutdownwithoutlogon = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: undockwithoutlogon = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystem: FilterAdministratorToken = 0
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystemUIPIClipboardExceptionFormats: CF_TEXT = 1
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystemUIPIClipboardExceptionFormats: CF_BITMAP = 2
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystemUIPIClipboardExceptionFormats: CF_OEMTEXT = 7
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystemUIPIClipboardExceptionFormats: CF_DIB = 8
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystemUIPIClipboardExceptionFormats: CF_PALETTE = 9
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystemUIPIClipboardExceptionFormats: CF_UNICODETEXT = 13
O6 - HKLMSOFTWAREMicrosoftWindowsCurrentVersionpol iciesSystemUIPIClipboardExceptionFormats: CF_DIBV5 = 17
O7 - HKCUSOFTWAREMicrosoftWindowsCurrentVersionpol iciesExplorer: NoDriveTypeAutoRun = 145
O7 - HKCUSOFTWAREMicrosoftWindowsCurrentVersionpol iciesExplorerRun: Policies = C:UsersASUSAppDataRoaminginstallsvchost.EXE
O8:64bit: - Extra context menu item: E&xport to Microsoft Excel - res://C:PROGRA~2MICROS~4Office12EXCEL.EXE/3000 File not found
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:PROGRA~2MICROS~4Office12EXCEL.EXE/3000 File not found
O9:64bit: - Extra Button: Skype Click to Call - - C:Program Files (x86)SkypeToolbarsInternet Explorer x64skypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: @C:Program Files (x86)Windows LiveCompanioncompanionlang.dll,-600 - - C:Program Files (x86)Windows LiveCompanioncompanioncore.dll (Microsoft Corporation)
O9 - Extra Button: Send to OneNote - - C:PROGRA~2MICROS~4Office12ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - - C:PROGRA~2MICROS~4Office12ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: Skype Click to Call - - C:Program Files (x86)SkypeToolbarsInternet Explorerskypeieplugin.dll (Skype Technologies S.A.)
O9 - Extra Button: Research - - C:PROGRA~2MICROS~4Office12REFIEBAR.DLL (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000001 [] - C:WindowsSysNativenlaapi.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000002 [] - C:WindowsSysNativeNapiNSP.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000003 [] - C:WindowsSysNativepnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000004 [] - C:WindowsSysNativepnrpnsp.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000005 [] - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000006 [] - C:WindowsSysNativewinrnr.dll (Microsoft Corporation)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000007 [] - C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5Catalog_Entries6400000000008 [] - C:Program FilesCommon FilesMicrosoft SharedWindows LiveWLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000001 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000002 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000003 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000004 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000005 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000006 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000007 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000008 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000009 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10:64bit: - Protocol_Catalog9Catalog_Entries6400000000010 - C:WindowsSysNativemswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000001 [] - C:WindowsSysWOW64nlaapi.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000002 [] - C:WindowsSysWOW64NapiNSP.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000003 [] - C:WindowsSysWOW64pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000004 [] - C:WindowsSysWOW64pnrpnsp.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000005 [] - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000006 [] - C:WindowsSysWOW64winrnr.dll (Microsoft Corporation)
O10 - NameSpace_Catalog5Catalog_Entries00000000007 [] - C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWLIDNSP.DLL (Microsoft Corp.)
O10 - NameSpace_Catalog5Catalog_Entries00000000008 [] - C:Program Files (x86)Common FilesMicrosoft SharedWindows LiveWLIDNSP.DLL (Microsoft Corp.)
O10 - NameSpace_Catalog5Catalog_Entries00000000009 [] - C:Program Files (x86)BonjourmdnsNSP.dll (Apple Computer, Inc.)
O10 - Protocol_Catalog9Catalog_Entries00000000001 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000002 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000003 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000004 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000005 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000006 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000007 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000008 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000009 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O10 - Protocol_Catalog9Catalog_Entries00000000010 - C:WindowsSysWOW64mswsock.dll (Microsoft Corporation)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O17 - HKLMSystemCCSServicesTcpipParameters: DhcpNameServer = 192.168.1.1
O17 - HKLMSystemCCSServicesTcpipParametersInterfac es: DhcpNameServer = 192.168.1.1
O17 - HKLMSystemCCSServicesTcpipParametersInterfac es: NameServer = 8.8.8.8,8.8.4.4
O18:64bit: - ProtocolHandlerabout - C:WindowsSysNativemshtml.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlercdl - C:WindowsSysNativeurlmon.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerdvd - C:WindowsSysNativeMSVidCtl.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerfile - C:WindowsSysNativeurlmon.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerftp - C:WindowsSysNativeurlmon.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlergrooveLocalGWS - No CLSID value found
O18:64bit: - ProtocolHandlerhttp - C:WindowsSysNativeurlmon.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerhttps - C:WindowsSysNativeurlmon.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerits - C:WindowsSysNativeitss.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerjavascript - C:WindowsSysNativemshtml.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerlivecall - No CLSID value found
O18:64bit: - ProtocolHandlerlocal - C:WindowsSysNativeurlmon.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlermailto - C:WindowsSysNativemshtml.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlermhtml - C:WindowsSysNativeinetcomm.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlermk - C:WindowsSysNativeurlmon.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerms-help - No CLSID value found
O18:64bit: - ProtocolHandlerms-its - C:WindowsSysNativeitss.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlermsnim - No CLSID value found
O18:64bit: - ProtocolHandlerres - C:WindowsSysNativemshtml.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlerskype4com - No CLSID value found
O18:64bit: - ProtocolHandlerskype-ie-addon-data - C:Program Files (x86)SkypeToolbarsInternet Explorer x64skypeieplugin.dll (Skype Technologies S.A.)
O18:64bit: - ProtocolHandlertv - C:WindowsSysNativeMSVidCtl.dll (Microsoft Corporation)
O18:64bit: - ProtocolHandlervbscript - C:WindowsSysNativemshtml.dll (Microsoft Corporation)
O18 - ProtocolHandlerabout - C:WindowsSysWOW64mshtml.dll (Microsoft Corporation)
O18 - ProtocolHandlercdl - C:WindowsSysWOW64urlmon.dll (Microsoft Corporation)
O18 - ProtocolHandlerdvd - C:WindowsSysWOW64MSVidCtl.dll (Microsoft Corporation)
O18 - ProtocolHandlerfile - C:WindowsSysWOW64urlmon.dll (Microsoft Corporation)
O18 - ProtocolHandlerftp - C:WindowsSysWOW64urlmon.dll (Microsoft Corporation)
O18 - ProtocolHandlergrooveLocalGWS - C:Program Files (x86)Microsoft OfficeOffice12GrooveSystemServices.dll (Microsoft Corporation)
O18 - ProtocolHandlerhttp - C:WindowsSysWOW64urlmon.dll (Microsoft Corporation)
O18 - ProtocolHandlerhttps - C:WindowsSysWOW64urlmon.dll (Microsoft Corporation)
O18 - ProtocolHandlerits - C:WindowsSysWOW64itss.dll (Microsoft Corporation)
O18 - ProtocolHandlerjavascript - C:WindowsSysWOW64mshtml.dll (Microsoft Corporation)
O18 - ProtocolHandlerlivecall - C:Program Files (x86)Windows LiveMessengermsgrapp.dll (Microsoft Corporation)
O18 - ProtocolHandlerlocal - C:WindowsSysWOW64urlmon.dll (Microsoft Corporation)
O18 - ProtocolHandlermailto - C:WindowsSysWOW64mshtml.dll (Microsoft Corporation)
O18 - ProtocolHandlermhtml - C:WindowsSysWOW64inetcomm.dll (Microsoft Corporation)
O18 - ProtocolHandlermk - C:WindowsSysWOW64urlmon.dll (Microsoft Corporation)
O18 - ProtocolHandlerms-help - C:Program Files (x86)Common FilesMicrosoft SharedHelphxds.dll (Microsoft Corporation)
O18 - ProtocolHandlerms-its - C:WindowsSysWOW64itss.dll (Microsoft Corporation)
O18 - ProtocolHandlermsnim - C:Program Files (x86)Windows LiveMessengermsgrapp.dll (Microsoft Corporation)
O18 - ProtocolHandlerres - C:WindowsSysWOW64mshtml.dll (Microsoft Corporation)
O18 - ProtocolHandlerskype4com - C:PROGRA~2COMMON~1SkypeSKYPE4~1.DLL (Skype Technologies)
O18 - ProtocolHandlerskype-ie-addon-data - C:Program Files (x86)SkypeToolbarsInternet Explorerskypeieplugin.dll (Skype Technologies S.A.)
O18 - ProtocolHandlertv - C:WindowsSysWOW64MSVidCtl.dll (Microsoft Corporation)
O18 - ProtocolHandlervbscript - C:WindowsSysWOW64mshtml.dll (Microsoft Corporation)
O18:64bit: - ProtocolFilterapplication/octet-stream - C:WindowsSysNativemscoree.dll (Microsoft Corporation)
O18:64bit: - ProtocolFilterapplication/x-complus - C:WindowsSysNativemscoree.dll (Microsoft Corporation)
O18:64bit: - ProtocolFilterapplication/x-msdownload - C:WindowsSysNativemscoree.dll (Microsoft Corporation)
O18:64bit: - ProtocolFiltertext/xml - C:Program FilesCommon FilesMicrosoft SharedOFFICE12MSOXMLMF.DLL (Microsoft Corporation)
O18 - ProtocolFilterapplication/octet-stream - C:WindowsSysWow64mscoree.dll (Microsoft Corporation)
O18 - ProtocolFilterapplication/x-complus - C:WindowsSysWow64mscoree.dll (Microsoft Corporation)
O18 - ProtocolFilterapplication/x-msdownload - C:WindowsSysWow64mscoree.dll (Microsoft Corporation)
O18 - ProtocolFiltertext/xml - C:PROGRA~2COMMON~1MICROS~1OFFICE12MSOXMLMF.DL L (Microsoft Corporation)
O20:64bit: - AppInit_DLLs: (C:PROGRA~1NVIDIA~1NVSTRE~1rxinput.dll) - C:Program FilesNVIDIA CorporationNvStreamSrvrxinput.dll (NVIDIA Corporation)
O20 - AppInit_DLLs: (c


O20 - AppInit_DLLs: (C:PROGRA~2NVIDIA~1NVSTRE~1rxinput.dll) - C:PROGRA~2NVIDIA~1NVSTRE~1rxinput.dll (NVIDIA Corporation)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:Windowsexplorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:Windowssystem32userinit.exe) - C:WindowsSysNativeuserinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:WindowsSysNativeSystemPropertiesPerformance.e xe (Microsoft Corporation)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:WindowsSysWow64explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (C:Windowssystem32userinit.exe) - C:WindowsSysWOW64userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (SystemPropertiesPerformance.exe) - C:WindowsSysWow64SystemPropertiesPerformance.ex e (Microsoft Corporation)
O21:64bit: - SSODL: WebCheck - - No CLSID value found.
O21 - SSODL: WebCheck - - No CLSID value found.
O28 - HKLM ShellExecuteHooks: - C:Program Files (x86)Microsoft OfficeOffice12GrooveShellExtensions.dll (Microsoft Corporation)
O29:64bit: - HKLM SecurityProviders - (credssp.dll) - C:WindowsSysWow64credssp.dll (Microsoft Corporation)
O29 - HKLM SecurityProviders - (credssp.dll) - C:WindowsSysWow64credssp.dll (Microsoft Corporation)
O30:64bit: - LSA: Authentication Packages - (msv1_0) - C:WindowsSysNativemsv1_0.dll (Microsoft Corporation)
O30 - LSA: Authentication Packages - (msv1_0) - C:WindowsSysWow64msv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (kerberos) - C:WindowsSysNativekerberos.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (msv1_0) - C:WindowsSysNativemsv1_0.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (schannel) - C:WindowsSysNativeschannel.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (wdigest) - C:WindowsSysNativewdigest.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (tspkg) - C:WindowsSysNativetspkg.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (pku2u) - C:WindowsSysNativepku2u.dll (Microsoft Corporation)
O30:64bit: - LSA: Security Packages - (livessp) - C:WindowsSysNativelivessp.dll (Microsoft Corp.)
O30 - LSA: Security Packages - (kerberos) - C:WindowsSysWow64kerberos.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (msv1_0) - C:WindowsSysWow64msv1_0.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (schannel) - C:WindowsSysWow64schannel.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (wdigest) - C:WindowsSysWow64wdigest.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (tspkg) - C:WindowsSysWow64tspkg.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (pku2u) - C:WindowsSysWow64pku2u.dll (Microsoft Corporation)
O30 - LSA: Security Packages - (livessp) - C:WindowsSysWow64livessp.dll (Microsoft Corp.)
O31 - SafeBoot: AlternateShell - cmd.exe
O32 - HKLM CDRom: AutoRun - 1
O32 - AutoRun File - [2013.04.05 19:40:58 | 000,000,043 | R--- | M] () - E:autorun.inf -- [ CDFS ]
O33 - MountPoints2\Shell - "" = AutoRun
O33 - MountPoints2\ShellAutoRuncommand - "" = F:WindowsAutorun.exe AUTORUN=1
O33 - MountPoints2\Shell - "" = AutoRun
O33 - MountPoints2\ShellAutoRuncommand - "" = E:setup.exe -- [2013.04.05 19:41:40 | 000,461,863 | R--- | M] ( )
O33 - MountPoints2EShell - "" = AutoRun
O33 - MountPoints2EShellAutoRuncommand - "" = E:EuroTruckSimulator2_setup.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM..comfile [open] -- "%1" %*
O35:64bit: - HKLM..exefile [open] -- "%1" %*
O35 - HKLM..comfile [open] -- "%1" %*
O35 - HKLM..exefile [open] -- "%1" %*
O37:64bit: - HKLM...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM...exe [@ = exefile] -- "%1" %*
O37 - HKLM...com [@ = comfile] -- "%1" %*
O37 - HKLM...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2013.09.01 01:55:08 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingHD Tune Pro
[2013.09.01 01:55:05 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsHD Tune Pro
[2013.09.01 01:55:05 | 000,000,000 | ---D | C] -- C:Program Files (x86)HD Tune Pro
[2013.09.01 00:57:04 | 000,000,000 | ---D | C] -- C:UsersASUSDesktopOriginals
[2013.08.29 21:43:13 | 000,000,000 | ---D | C] -- C:Program Files (x86)Homepage
[2013.08.26 23:21:01 | 000,000,000 | ---D | C] -- C:UsersASUSDesktopFiFA 13 4 Buyukler Tezahurat Yaması
[2013.08.26 19:14:55 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataLocalGeniaware
[2013.08.25 23:34:55 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingWebcamMax
[2013.08.25 23:33:34 | 000,000,000 | ---D | C] -- C:Program Files (x86)WebcamMax
[2013.08.23 14:40:52 | 000,000,000 | ---D | C] -- C:UsersASUSDocumentsMasters of the World
[2013.08.23 14:39:07 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsXvid
[2013.08.23 14:39:06 | 000,000,000 | ---D | C] -- C:Program Files (x86)Xvid
[2013.08.23 14:38:36 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsMasters of the World
[2013.08.23 14:38:03 | 000,000,000 | ---D | C] -- C:Program Files (x86)Common FilesThraex Software
[2013.08.21 21:51:38 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingOctoshape
[2013.08.21 21:51:38 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataLocalOctoshape
[2013.08.21 20:12:20 | 000,000,000 | ---D | C] -- C:UsersASUSDocumentsMount&Blade Warband
[2013.08.21 20:10:56 | 000,000,000 | ---D | C] -- C:UsersASUSDesktopFO.0632
[2013.08.21 19:44:02 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsSimCity Offline Server
[2013.08.21 19:00:19 | 000,000,000 | ---D | C] -- C:UsersASUSDesktopModule_system 1.153
[2013.08.21 19:00:19 | 000,000,000 | ---D | C] -- C:UsersASUSDesktopModule_data 1.153
[2013.08.21 17:36:33 | 000,000,000 | ---D | C] -- C:UsersASUSDocumentsMount&Blade Warband Savegames
[2013.08.21 17:34:56 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingMount&Blade Warband
[2013.08.21 17:32:40 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingMicrosoftWindowsSt art MenuProgramsMount&Blade Warband
[2013.08.21 17:32:40 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsMount&Blade Warband
[2013.08.21 10:59:05 | 000,000,000 | ---D | C] -- C:UsersASUSDocumentsMount&Blade With Fire and Sword
[2013.08.21 10:59:05 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingMount&Blade With Fire and Sword
[2013.08.20 23:16:45 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingMicrosoftWindowsSt art MenuProgramsMount&Blade With Fire and Sword
[2013.08.20 23:16:45 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsMount&Blade With Fire and Sword
[2013.08.16 19:57:52 | 000,000,000 | ---D | C] -- C:UsersASUSAppDataRoamingMicrosoftWindowsSt art MenuProgramsGames
[2013.08.16 19:57:27 | 000,000,000 | ---D | C] -- C:ProgramDataAge of Empires 3
[2013.08.16 19:50:20 | 000,000,000 | ---D | C] -- C:Program Files (x86)MSXML 4.0
[2013.08.16 19:49:40 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsMicrosoft Studios
[2013.08.06 13:25:39 | 000,000,000 | ---D | C] -- C:ProgramDataMicrosoftWindowsStart MenuProgramsRegClean Pro
[2013.08.06 13:25:39 | 000,000,000 | ---D | C] -- C:Program Files (x86)RegClean Pro
[2013.08.06 13:09:21 | 000,000,000 | ---D | C] -- C:Windowspss
[2013.08.06 12:37:28 | 000,000,000 | ---D | C] -- C:ProgramDataTTNetIlkYardim
[6 C:*.tmp files -> C:*.tmp -> ]
[1 C:Windows*.tmp files -> C:Windows*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2013.09.04 17:20:22 | 000,026,576 | -H-- | M] () -- C:WindowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2013.09.04 17:20:22 | 000,026,576 | -H-- | M] () -- C:WindowsSysNative7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2013.09.04 17:13:09 | 000,001,012 | ---- | M] () -- C:WindowstasksGoogleUpdateTaskMachineCore.job
[2013.09.04 17:12:59 | 000,067,584 | --S- | M] () -- C:Windowsbootstat.dat
[2013.09.04 17:12:54 | 3220,574,208 | -HS- | M] () -- C:hiberfil.sys
[2013.09.04 12:08:02 | 000,001,016 | ---- | M] () -- C:WindowstasksGoogleUpdateTaskMachineUA.job
[2013.09.04 11:52:01 | 000,001,026 | ---- | M] () -- C:WindowstasksGoogleUpdateTaskUserS-1-5-21-111182335-2137641465-651854765-1000UA.job
[2013.09.04 11:49:00 | 000,000,814 | ---- | M] () -- C:WindowstasksAdobe Flash Player Updater.job
[2013.09.04 01:55:18 | 000,002,368 | ---- | M] () -- C:UsersASUSApplication DataMicrosoftInternet ExplorerQuick LaunchGoogle Chrome.lnk
[2013.09.01 15:01:10 | 000,000,274 | ---- | M] () -- C:WindowstasksRegClean Pro_DEFAULT.job
[2013.09.01 01:55:05 | 000,001,033 | ---- | M] () -- C:UsersASUSDesktopHD Tune Pro.lnk
[2013.08.30 11:29:39 | 000,001,198 | ---- | M] () -- C:UsersPublicDesktopGoogle Chrome.lnk
[2013.08.28 13:25:11 | 000,000,282 | ---- | M] () -- C:WindowstasksRegClean Pro_UPDATES.job
[2013.08.27 01:59:05 | 000,261,300 | ---- | M] () -- C:UsersASUSDesktopDarica.jpg
[2013.08.26 19:14:19 | 000,000,563 | ---- | M] () -- C:UsersPublicDesktopLords of Football.lnk
[2013.08.25 19:23:49 | 001,590,162 | ---- | M] () -- C:WindowsSysWow64PerfStringBackup.INI
[2013.08.25 19:23:49 | 000,657,588 | ---- | M] () -- C:WindowsSysNativeperfh01F.dat
[2013.08.25 19:23:49 | 000,655,092 | ---- | M] () -- C:WindowsSysNativeperfh009.dat
[2013.08.25 19:23:49 | 000,139,784 | ---- | M] () -- C:WindowsSysNativeperfc01F.dat
[2013.08.25 19:23:49 | 000,121,964 | ---- | M] () -- C:WindowsSysNativeperfc009.dat
[2013.08.23 14:40:31 | 000,601,847 | ---- | M] () -- C:WindowsMOW 2013 ENGLISH DL Uninstaller.exe
[2013.08.16 10:52:02 | 000,000,974 | ---- | M] () -- C:WindowstasksGoogleUpdateTaskUserS-1-5-21-111182335-2137641465-651854765-1000Core.job
[2013.08.14 02:39:15 | 001,583,884 | ---- | M] () -- C:WindowsSysNativePerfStringBackup.INI
[2013.08.08 12:05:37 | 000,119,379 | ---- | M] () -- C:UsersASUSDesktopIMG-20130805-WA0001.jpg
[2013.08.06 13:25:39 | 000,001,050 | ---- | M] () -- C:UsersPublicDesktopRegClean Pro.lnk
[6 C:*.tmp files -> C:*.tmp -> ]
[1 C:Windows*.tmp files -> C:Windows*.tmp -> ]
========== Files Created - No Company Name ==========
[2013.09.01 01:55:05 | 000,001,033 | ---- | C] () -- C:UsersASUSDesktopHD Tune Pro.lnk
[2013.08.30 11:29:39 | 000,001,228 | ---- | C] () -- C:ProgramDataMicrosoftWindowsStart MenuProgramsGoogle Chrome.lnk
[2013.08.30 11:29:39 | 000,001,198 | ---- | C] () -- C:UsersPublicDesktopGoogle Chrome.lnk
[2013.08.30 11:29:39 | 000,000,962 | ---- | C] () -- C:ProgramDataMicrosoftWindowsStart MenuProgramsInternet Explorer.lnk
[2013.08.27 01:59:05 | 000,261,300 | ---- | C] () -- C:UsersASUSDesktopDarica.jpg
[2013.08.26 23:45:46 | 000,000,355 | ---- | C] () -- C:UsersASUSDesktopfb gol muziği.wpl
[2013.08.26 19:14:19 | 000,000,563 | ---- | C] () -- C:UsersPublicDesktopLords of Football.lnk
[2013.08.26 19:14:19 | 000,000,563 | ---- | C] () -- C:ProgramDataMicrosoftWindowsStart MenuProgramsLords of Football.lnk
[2013.08.23 14:39:07 | 000,255,488 | ---- | C] () -- C:WindowsSysNativexvidvfw.dll
[2013.08.23 14:39:06 | 000,696,832 | ---- | C] () -- C:WindowsSysNativexvidcore.dll
[2013.08.23 14:39:06 | 000,645,632 | ---- | C] () -- C:WindowsSysWow64xvidcore.dll
[2013.08.23 14:39:06 | 000,240,640 | ---- | C] () -- C:WindowsSysWow64xvidvfw.dll
[2013.08.23 14:39:06 | 000,173,568 | ---- | C] () -- C:WindowsSysNativexvid.ax
[2013.08.23 14:39:06 | 000,153,088 | ---- | C] () -- C:WindowsSysWow64xvid.ax
[2013.08.23 14:38:36 | 000,601,847 | ---- | C] () -- C:WindowsMOW 2013 ENGLISH DL Uninstaller.exe
[2013.08.06 13:25:48 | 000,000,274 | ---- | C] () -- C:WindowstasksRegClean Pro_DEFAULT.job
[2013.08.06 13:25:47 | 000,000,282 | ---- | C] () -- C:WindowstasksRegClean Pro_UPDATES.job
[2013.08.06 13:25:39 | 000,001,050 | ---- | C] () -- C:UsersPublicDesktopRegClean Pro.lnk
[2013.07.24 15:42:04 | 001,590,162 | ---- | C] () -- C:WindowsSysWow64PerfStringBackup.INI
[2013.07.20 15:28:46 | 000,000,640 | ---- | C] () -- C:WindowseReg.dat
[2013.03.26 21:38:16 | 000,802,366 | ---- | C] () -- C:UsersASUSDSC05387.jpg
[2013.03.25 01:33:36 | 000,024,178 | ---- | C] () -- C:UsersASUS8818882.jpg
[2013.03.25 01:33:26 | 000,024,666 | ---- | C] () -- C:UsersASUSSAMSUNG-ML-1610-LASER-YAZICI.jpg
[2013.03.25 01:14:57 | 000,482,936 | ---- | C] () -- C:UsersASUS2013-03-25 00.00.24.jpg
[2013.03.25 01:14:57 | 000,433,348 | ---- | C] () -- C:UsersASUS2013-03-25 00.00.36.jpg
[2013.03.24 14:00:07 | 000,281,688 | ---- | C] () -- C:WindowsSysWow64PnkBstrB.exe
[2013.03.24 14:00:05 | 000,076,888 | ---- | C] () -- C:WindowsSysWow64PnkBstrA.exe
[2013.03.24 13:29:01 | 302,467,230 | ---- | C] () -- C:UsersASUSFrCry.III.Updt.4.REL.rar
[2013.03.22 18:29:29 | 000,508,050 | ---- | C] () -- C:UsersASUS2013-03-22 17.29.29.jpg
[2013.03.21 22:02:39 | 000,122,880 | ---- | C] () -- C:Windowsrm303b.exe
[2013.03.21 22:02:39 | 000,049,152 | ---- | C] () -- C:WindowsDomino.exe
[2013.03.18 22:15:21 | 000,000,000 | ---- | C] () -- C:UsersASUSinitdebug.nfo
[2013.03.14 14:14:49 | 000,178,688 | ---- | C] () -- C:WindowsSysWow64unrar.dll
[2012.11.21 01:32:40 | 003,123,272 | R--- | C] () -- C:WindowsSysWow64pbsvc.exe
[2011.09.28 18:44:14 | 000,179,271 | ---- | C] () -- C:WindowsSysWow64xlive.dll.cat
========== ZeroAccess Check ==========
[2009.07.14 07:55:00 | 000,000,227 | RHS- | M] () -- C:WindowsassemblyDesktop.ini
[HKEY_CURRENT_USERSoftwareClassesclsid\InProcServer 32] /64
[HKEY_CURRENT_USERSoftwareClassesWow6432nodecls id\InProcServer32]
[HKEY_CURRENT_USERSoftwareClassesclsid\InProcServer 32] /64
[HKEY_CURRENT_USERSoftwareClassesWow6432nodecls id\InProcServer32]
[HKEY_LOCAL_MACHINESoftwareClassesclsid\InProcServe r32] /64
"" = C:WindowsSysNativeshell32.dll -- [2013.02.27 08:52:56 | 014,172,672 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINESoftwareWow6432NodeClassescl sid\InProcServer32]
"" = %SystemRoot%system32shell32.dll -- [2013.02.27 07:55:05 | 012,872,704 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment
[HKEY_LOCAL_MACHINESoftwareClassesclsid\InProcServe r32] /64
"" = C:WindowsSysNativewbemfastprox.dll -- [2009.07.14 04:40:51 | 000,909,312 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINESoftwareWow6432NodeClassescl sid\InProcServer32]
"" = %systemroot%system32wbemfastprox.dll -- [2010.11.21 06:24:25 | 000,606,208 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free
[HKEY_LOCAL_MACHINESoftwareClassesclsid\InProcServe r32] /64
"" = C:WindowsSysNativewbemwbemess.dll -- [2009.07.14 04:41:56 | 000,505,856 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both
[HKEY_LOCAL_MACHINESoftwareWow6432NodeClassescl sid\InProcServer32]
========== LOP Check ==========
[2013.06.12 00:01:44 | 000,000,000 | -H-D | M] -- C:UsersASUSAppDataRoaming30B3F731
[2013.09.04 17:43:50 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingBitTorrent
[2013.08.30 11:29:32 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingDAEMON Tools Lite
[2013.09.01 01:55:08 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingHD Tune Pro
[2013.06.11 19:17:18 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoaminginstall
[2013.08.21 17:36:08 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingMount&Blade Warband
[2013.08.21 12:08:45 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingMount&Blade With Fire and Sword
[2013.03.14 21:34:39 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingNico Mak Computing
[2013.08.21 21:51:38 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingOctoshape
[2013.06.25 21:31:26 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingOpenCandy
[2013.06.04 19:20:31 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingOrigin
[2013.04.15 18:58:49 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingPhotoScape
[2013.03.14 21:13:18 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingSystemRequirementsLa b
[2013.08.06 13:25:41 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingSystweak
[2013.03.20 01:14:22 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingTeamViewer
[2013.03.18 23:51:12 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingThe Creative Assembly
[2013.06.26 14:53:33 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingUnity
[2013.03.20 21:30:18 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingUpdater
[2013.08.25 23:34:55 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingWebcamMax
[2013.03.26 23:25:09 | 000,000,000 | ---D | M] -- C:UsersASUSAppDataRoamingXnView
========== Purity Check ==========
========== Alternate Data Streams ==========
@Alternate Data Stream - 129 bytes -> C:ProgramDataTEMP

< End of report >
__________________